Crawl4AI 在 0.9.3 版本之前存在一个服务器端请求伪造(SSRF)漏洞,位于 中。该漏洞的成因是 方法使用 Python 库重新下载目标文件,但缺少出口(egress)验证。经过身份验证的攻击者可以提供一个重定向到内部地址的 URL,或利用 DNS 重绑定技术访问内部服务,并通过爬取结果中的 PDF 文本提取功能将响应内容泄露出去。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-91941 | 7.5 HIGH | Crawl4AI before 0.9.3 Denial of Service via PDFContentScrapingStrategy |
| CVE-2026-91940 | 7.5 HIGH | crawl4ai before 0.9.3 Arbitrary File Write via PDFContentScrapingStrategy |
| CVE-2026-91944 | 6.1 MEDIUM | crawl4ai before 0.9.3 DOM-based XSS via Playground UI |
| CVE-2026-91942 | 5.4 MEDIUM | crawl4ai before 0.9.3 Cross-Site Scripting via innerHTML |
No comments yet